Description
WordPress Plugin No Follow All External Links is injecting spam into the website's content, thus publicizing content to normal site visitors or to search engines without the authorization of the website's owner. WordPress Plugin No Follow All External Links version 2.3.0 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin WP Sudoku Plus Unspecified Vulnerability (1.4)
WordPress Plugin Multi Step Form Multiple Cross-Site Scripting Vulnerabilities (1.2.5)
Joomla! Core Directory Traversal (1.5.0 - 3.9.4)
WordPress Plugin Limit Login Attempts Security Bypass (1.7.0)
WordPress Plugin Catch Themes Demo Import Arbitrary File Upload (1.7)